Exposure Audit

Audit what you are actually exposed to — live API keys sitting in cloud-synced folders, secrets committed to public repos, unauthenticated local services, abandoned deployments still holding environment variables, and the twenty classic vibe-coding app vulnerabilities. Use this skill whenever the user says "am I exposed", "check my security", "did I leak a key", "is anything of mine hackable", "audit my machine", "check my repos for secrets", "are we at risk of this", or pastes a security scare (a reel, a thread, a news story, a vulnerability list) and wants to know whether it applies to them. Also use it before making a repo public, before handing a project to a collaborator, and after shutting a product down. Reach for it even when the user does not say the word "security" — if the honest answer needs to know what is actually exposed, audit first, then answer.

harshsinghmp b912533 4 files · 37.3 KB Updated

File contents

harshsinghmp/skills/tree/main/skills/exposure-audit commit b912533604

Frequently asked questions

npx skillmds@latest add harshsinghmp/exposure-audit